Information disclosure in Gitlab EE/CE affecting all versions from 15.6 prior to 17.2.8, 17.3 prior to 17.3.4, and 17.4 prior to 17.4.1 in specific conditions it was possible to disclose to an unauthorised user the path of a private project."
References
Link | Resource |
---|---|
https://gitlab.com/gitlab-org/gitlab/-/issues/482843 | Broken Link |
Configurations
Configuration 1 (hide)
|
History
04 Oct 2024, 17:30
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 4.3 |
References | () https://gitlab.com/gitlab-org/gitlab/-/issues/482843 - Broken Link | |
First Time |
Gitlab gitlab
Gitlab |
|
CPE | cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:* cpe:2.3:a:gitlab:gitlab:17.4.0:*:*:*:community:*:*:* cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:* cpe:2.3:a:gitlab:gitlab:17.4.0:*:*:*:enterprise:*:*:* |
|
CWE | CWE-863 |
30 Sep 2024, 12:46
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
26 Sep 2024, 23:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-09-26 23:15
Updated : 2024-10-04 17:30
NVD link : CVE-2024-8974
Mitre link : CVE-2024-8974
CVE.ORG link : CVE-2024-8974
JSON object : View
Products Affected
gitlab
- gitlab